ThreatFox IOC Database

You are viewing the ThreatFox database entry for url https://arrierzh.cyou/api.

Database Entry


IOC ID:1693063
IOC: https://arrierzh.cyou/api
IOC Type :url
Threat Type :botnet_cc
Malware: Lumma Stealer
Malware alias:LummaC2 Stealer
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
First seen:2026-01-08 08:06:26 UTC
Last seen:2026-01-24 19:19:23 UTC
UUID:ee20b925-ec68-11f0-9957-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:Lumma
Reference: https://bazaar.abuse.ch/sample/5490dc64bd49f7e57bea3f5f5b885bd439558921f2d7fed8a08768845d12fbbe/

Avatar
abuse_ch
lumma (aka LummaC2 Stealer) botnet C2